2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-45256MEDIUM5.5A Null Pointer Dereference vulnerability existfs in nasm 2.16rc0 via asm/preproc.c.
CVE-2021-44733HIGH7A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs b...
CVE-2021-39013MEDIUM6.5IBM Cloud Pak for Security (CP4S) 1.7.2.0, 1.7.1.0, and 1.7.0.0 could allow an authenticated user to obtain sensitive in...
CVE-2021-45418HIGH8.8Certain Starcharge products are vulnerable to Directory Traversal via main.cgi. The affected products include: Nova 360 ...
CVE-2021-36750HIGH8.1ENC DataVault before 7.2 and VaultAPI v67 mishandle key derivation, making it easier for attackers to determine the pass...
CVE-2021-40612CRITICAL9.8An issue was discovered in Opmantek Open-AudIT after 3.5.0. Without authentication, a vulnerability in code_igniter/appl...
CVE-2021-40836MEDIUM5.5A vulnerability affecting F-Secure antivirus engine was discovered whereby scanning MS outlook .pst files can lead to de...
CVE-2021-45459CRITICAL9.8lib/cmd.js in the node-windows package before 1.0.0-beta.6 for Node.js allows command injection via the PID parameter.
CVE-2021-44031CRITICAL9.8An issue was discovered in Quest KACE Desktop Authority before 11.2. /dacomponentui/profiles/profileitems/outlooksetting...
CVE-2021-44030MEDIUM6.1Quest KACE Desktop Authority before 11.2 allows XSS because it does not prevent untrusted HTML from reaching the jQuery....
CVE-2021-44029CRITICAL9.8An issue was discovered in Quest KACE Desktop Authority before 11.2. This vulnerability allows attackers to execute remo...
CVE-2021-44028MEDIUM5.5XXE can occur in Quest KACE Desktop Authority before 11.2 because the log4net configuration file might be controlled by ...
CVE-2021-43851HIGH8.8Anuko Time Tracker is an open source, web-based time tracking application written in PHP. SQL injection vulnerability ex...
CVE-2021-44927MEDIUM5.5A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_sg_vrml_mf_append function, which causes a segme...
CVE-2021-44926MEDIUM5.5A null pointer dereference vulnerability exists in gpac 1.1.0-DEV in the gf_node_get_tag function, which causes a segmen...
CVE-2021-44925MEDIUM5.5A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_svg_get_attribute_name function, which causes a ...
CVE-2021-44924MEDIUM5.5An infinite loop vulnerability exists in gpac 1.1.0 in the gf_log function, which causes a Denial of Service.
CVE-2021-44923MEDIUM5.5A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_dump_vrml_dyn_field.isra function, which causes ...
CVE-2021-44922MEDIUM5.5A null pointer dereference vulnerability exists in gpac 1.1.0 in the BD_CheckSFTimeOffset function, which causes a segme...
CVE-2021-44921MEDIUM5.5A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_isom_parse_movie_boxes_internal function, which ...
CVE-2021-44920MEDIUM5.5An invalid memory address dereference vulnerability exists in gpac 1.1.0 in the dump_od_to_saf.isra function, which caus...
CVE-2021-44919MEDIUM5.5A Null Pointer Dereference vulnerability exists in the gf_sg_vrml_mf_alloc function in gpac 1.1.0-DEV, which causes a se...
CVE-2021-44918MEDIUM5.5A Null Pointer Dereference vulnerability exists in gpac 1.1.0 in the gf_node_get_field function, which can cause a segme...
CVE-2021-44917MEDIUM5.5A Divide by Zero vulnerability exists in gnuplot 5.4 in the boundary3d function in graph3d.c, which could cause a Arithm...
CVE-2021-45297MEDIUM5.5An infinite loop vulnerability exists in Gpac 1.0.1 in gf_get_bit_size.

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now